Re: [pfSense Support] Simple Firewall that needs to allow VPN access to the network and a VLAN on the network.

2009-03-02 Thread Paul Mansfield
Chuck Mariotti wrote:
> I've always used the 10.x.x.x series... it's the least characters 
> 10.10.9.9, etc...

RFC1918 says you should pick a *random* entry from one of the ranges, so
that if two organisations merge there's less chance or a numbering
collisions.

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



Re: [pfSense Support] Simple Firewall that needs to allow VPN access to the network and a VLAN on the network.

2009-03-02 Thread Abdulrehman
RFC is right...but it takes more of common sense than technicality..!

Regards
Abdulrehman

On Mon, Mar 2, 2009 at 3:23 PM, Paul Mansfield
wrote:

> Chuck Mariotti wrote:
> > I've always used the 10.x.x.x series... it's the least characters
> 10.10.9.9, etc...
>
> RFC1918 says you should pick a *random* entry from one of the ranges, so
> that if two organisations merge there's less chance or a numbering
> collisions.
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


[pfSense Support] Newbie question - redirect nat.

2009-03-02 Thread k bah

 Hi,

 I  didn't find on the wiki the answer to my problem.
 I tried to add a simple redirect rule using all the NAT submenus, but I'm 
still lost.

 I want to:

  All incoming traffic (from inside my network) to a certain host A to be 
redirect to another host on my network, say host B. Both hosts are inside my 
network

 A service that was previously running on one machine needs to run on another 
machine, so I need the redirect to be transparent to users, since it's 
temporary.

 thanks in advance

=


-- 
Powered by Outblaze

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



RE: [pfSense Support] Block LAN ip from communicating

2009-03-02 Thread Tim Dickson
Remember rules are top down... so make sure you don't have an allow rule
ahead of it.
-Tim



From: Abdulrehman [mailto:arvagabo...@gmail.com] 
Sent: Saturday, February 28, 2009 2:12 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] Block LAN ip from communicating

Which version of Pfsense are you using currently...? I have used 1.2.1 and
1.2.2.its really simple and it worked fine for me

Regards
Abdulrehman
On Fri, Feb 27, 2009 at 11:43 PM, Chris Flugstad 
wrote:

This should be simple.  i tried adding firewall rules to block traffic from
that ip, but didnt work.  any help?
Chris Flugstad
Cascadelink
900 1st ave s, suite 201a
seattle, wa 98134
p: 206.774.3660 | f: 206.577.5066
ch...@cascadelink.com 
- To
unsubscribe, e-mail: support-unsubscr...@pfsense.com For additional
commands, e-mail: support-h...@pfsense.com Commercial support available -
https://portal.pfsense.org 



-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



[pfSense Support] Not all Virtual IP's forwarding correctly

2009-03-02 Thread Paul

We have a block ip address from our provider. The main ip for our
network and its port forwarding works well. I created 2 virtual
ip's. The second set and its port forwarding work with out issue (port
80) that go to another server. The 3rd virtual ip I created
partially works. SSH works. I then forwarded 80 with it and it does not
work. I can pull up the webpage internally though. Now I do have port 80
forwarded to different servers depending on the ip on the WAN port. What
do I need to provide to see why its not working for help

Thanks


-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



Re: [pfSense Support] Newbie question - redirect nat.

2009-03-02 Thread Abdulrehman
As you said both Hosts A and B are on your local network...do you think the
local request from any of these two will hit the gateway? If you want to
keep it transparent then swap the IPs of Host A and Host BDont involve
Pfsense in it..!

Regards
Abdulrehman

On Mon, Mar 2, 2009 at 7:44 PM, k bah  wrote:

>
>  Hi,
>
>  I  didn't find on the wiki the answer to my problem.
>  I tried to add a simple redirect rule using all the NAT submenus, but I'm
> still lost.
>
>  I want to:
>
>  All incoming traffic (from inside my network) to a certain host A to be
> redirect to another host on my network, say host B. Both hosts are inside my
> network
>
>  A service that was previously running on one machine needs to run on
> another machine, so I need the redirect to be transparent to users, since
> it's temporary.
>
>  thanks in advance
>
> =
>
>
> --
> Powered by Outblaze
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


Re: [pfSense Support] Not all Virtual IP's forwarding correctly

2009-03-02 Thread Abdulrehman
Don't confuse guys up here...!

1. where your IP is blocked...at ISP end or somewhere on internet..?
2. "The second set and its port forwarding work with out issue (port
80) that go to another server"..now which server..server on local network or
remote...?
3. "Now I do have port 80 forwarded to different servers depending on the ip
on the WAN port"...what does it mean?

Regards
Abdulrehman

On Tue, Mar 3, 2009 at 7:40 AM, Paul  wrote:

> We have a block ip address from our provider. The main ip for our
> network and its port forwarding works well. I created 2 virtual
> ip's. The second set and its port forwarding work with out issue (port
> 80) that go to another server. The 3rd virtual ip I created
> partially works. SSH works. I then forwarded 80 with it and it does not
> work. I can pull up the webpage internally though. Now I do have port 80
> forwarded to different servers depending on the ip on the WAN port. What
> do I need to provide to see why its not working for help
>
> Thanks
>
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>